Vulnerabilities > Improper Input Validation

DATE CVE VULNERABILITY TITLE RISK
2023-06-15 CVE-2023-21121 Improper Input Validation vulnerability in Google Android 11.0/12.0
In onResume of AppManagementFragment.java, there is a possible way to prevent users from forgetting a previously connected VPN due to improper input validation.
local
low complexity
google CWE-20
7.8
2023-06-15 CVE-2023-21135 Improper Input Validation vulnerability in Google Android
In onCreate of NotificationAccessSettings.java, there is a possible failure to persist notifications settings due to improper input validation.
local
low complexity
google CWE-20
7.8
2023-06-15 CVE-2023-21136 Improper Input Validation vulnerability in Google Android
In multiple functions of JobStore.java, there is a possible way to cause a crash on startup due to improper input validation.
local
low complexity
google CWE-20
5.5
2023-06-15 CVE-2023-21138 Improper Input Validation vulnerability in Google Android
In onNullBinding of CallRedirectionProcessor.java, there is a possible long lived connection due to improper input validation.
local
low complexity
google CWE-20
7.8
2023-06-15 CVE-2023-21143 Improper Input Validation vulnerability in Google Android
In multiple functions of multiple files, there is a possible way to make the device unusable due to improper input validation.
local
low complexity
google CWE-20
5.5
2023-06-09 CVE-2023-1888 Improper Input Validation vulnerability in Wpwax Directorist
The Directorist plugin for WordPress is vulnerable to an arbitrary user password reset in versions up to, and including, 7.5.4.
network
low complexity
wpwax CWE-20
8.8
2023-06-06 CVE-2023-21656 Improper Input Validation vulnerability in Qualcomm products
Memory corruption in WLAN HOST while receiving an WMI event from firmware.
local
low complexity
qualcomm CWE-20
7.8
2023-06-06 CVE-2023-21657 Improper Input Validation vulnerability in Qualcomm products
Memoru corruption in Audio when ADSP sends input during record use case.
local
low complexity
qualcomm CWE-20
7.8
2023-05-27 CVE-2023-32688 Improper Input Validation vulnerability in Parseplatform Parse Server Push Adapter
parse-server-push-adapter is the official Push Notification adapter for Parse Server.
network
low complexity
parseplatform CWE-20
7.5
2023-05-26 CVE-2023-21514 Improper Input Validation vulnerability in Samsung Galaxy Store 4.5.32.4/4.5.36.4/4.5.41.8
Improper scheme validation from InstantPlay Deeplink in Galaxy Store prior to version 4.5.49.8 allows attackers to execute javascript API to install APK from Galaxy Store.
network
low complexity
samsung CWE-20
8.8